CVE-2017-8652
MEDIUMMicrosoft Edge - Information Disclosure via Memory Object Handling
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-8652. PoCs published by Google Security Research.
AI-analyzed exploit summary This is a proof-of-concept exploit for CVE-2017-8652, a use-after-free vulnerability in Microsoft Edge. The PoC triggers a memory corruption issue by manipulating DOM elements and event handlers, leading to potential memory disclosure or remote code execution.
Description
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8644 and CVE-2017-8662.
Exploits (1)
This is a proof-of-concept exploit for CVE-2017-8652, a use-after-free vulnerability in Microsoft Edge. The PoC triggers a memory corruption issue by manipulating DOM elements and event handlers, leading to potential memory disclosure or remote code execution.
References (4)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N